|  | Commit message (Collapse) | Author | Age | Files | 
|---|
| | |  | 
| | |  | 
| | 
| 
| 
| | And doesn't retain root privileges. | 
| | |  | 
| | 
| 
| 
| 
| 
| 
| 
| 
| 
| 
| | “The JWS Protected Header is a JSON object” — RFC 7515 sec. 2.
“The JWS Protected Header MUST include the following fields:
    - "alg"
    - "nonce"
    - "url"
    - either "jwk" or "kid"”
 — RFC 8555 sec. 6.2. | 
| | 
| 
| 
| | Again… | 
| | |  | 
| | 
| 
| 
| | The staging environment wasn't set properly for the Debian packages. | 
| | 
| 
| 
| 
| | This saves a round trip and provides a safeguard against malicious
clients. | 
| | |  | 
| | |  | 
| | |  | 
| | 
| 
| 
| | Prefixed with a timestamp. | 
| | 
| 
| 
| 
| | It's an internal flag, but can be useful for authorized_keys(5)
restrictions. | 
| | 
| 
| 
| 
| 
| 
| 
| 
| 
| 
| 
| 
| 
| 
| 
| | lacme(8): for --config=, --socket=, --config-certs= (and ‘socket’/
‘config-certs’/‘challenge-directory’ configuration options *before*
privilege drop; and for the [accountd] section ‘command’/‘config’
configuration options *after* privilege drop).
lacme-accountd(1): for --config=, --socket= and --privkey= (and
‘socket’/‘privkey’ configuration options).
This also changes the default configuration file location.  lacme(8) and
lacme-accountd(1) now respectively use /etc/lacme/lacme.conf resp.
/etc/lacme/lacme-accountd.conf when running as root, and
$XDG_CONFIG_HOME/lacme/lacme.conf resp. $XDG_CONFIG_HOME/lacme/lacme-accountd.conf
when running as a normal user.  There is no fallback to /etc anymore. | 
| | 
| 
| 
| 
| 
| 
| | ../../lacme/apache2.conf.
This is useful for enabling the snippet with `a2enconf lacme`, cf.
https://bugs.debian.org/955859 . | 
| | 
| 
| 
| | And add a test case for this. | 
| | 
| 
| 
| | These tests are not interactive! | 
|  | https://letsencrypt.org/docs/staging-environment/ |